diff mbox series

[meta-oe] jq: upgrade 1.7 -> 1.7.1

Message ID 1703574067-12806-1-git-send-email-wangmy@fujitsu.com
State Accepted
Headers show
Series [meta-oe] jq: upgrade 1.7 -> 1.7.1 | expand

Commit Message

Mingyu Wang (Fujitsu) Dec. 26, 2023, 7:01 a.m. UTC
From: Wang Mingyu <wangmy@fujitsu.com>

Changelog:
==========
- CVE-2023-50246: Fix heap buffer overflow in jvp\_literal\_number\_literal
- CVE-2023-50268: fix stack-buffer-overflow if comparing nan with payload

Signed-off-by: Wang Mingyu <wangmy@fujitsu.com>
---
 meta-oe/recipes-devtools/jq/{jq_1.7.bb => jq_1.7.1.bb} | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)
 rename meta-oe/recipes-devtools/jq/{jq_1.7.bb => jq_1.7.1.bb} (95%)

Comments

Khem Raj Dec. 31, 2023, 12:38 a.m. UTC | #1
On Tue, 26 Dec 2023 15:01:07 +0800, wangmy@fujitsu.com wrote:
> Changelog:
> ==========
> - CVE-2023-50246: Fix heap buffer overflow in jvp\_literal\_number\_literal
> - CVE-2023-50268: fix stack-buffer-overflow if comparing nan with payload
> 
> 

Applied, thanks!

[1/1] jq: upgrade 1.7 -> 1.7.1
      commit: bef4681e41882684022a4d95036aab8f2632ed15

Best regards,
diff mbox series

Patch

diff --git a/meta-oe/recipes-devtools/jq/jq_1.7.bb b/meta-oe/recipes-devtools/jq/jq_1.7.1.bb
similarity index 95%
rename from meta-oe/recipes-devtools/jq/jq_1.7.bb
rename to meta-oe/recipes-devtools/jq/jq_1.7.1.bb
index 5c2e3aae8..6b1233551 100644
--- a/meta-oe/recipes-devtools/jq/jq_1.7.bb
+++ b/meta-oe/recipes-devtools/jq/jq_1.7.1.bb
@@ -12,7 +12,7 @@  GITHUB_BASE_URI = "https://github.com/jqlang/${BPN}/releases/"
 SRC_URI = "${GITHUB_BASE_URI}/download/${BPN}-${PV}/${BPN}-${PV}.tar.gz \
     file://run-ptest \
     "
-SRC_URI[sha256sum] = "402a0d6975d946e6f4e484d1a84320414a0ff8eb6cf49d2c11d144d4d344db62"
+SRC_URI[sha256sum] = "478c9ca129fd2e3443fe27314b455e211e0d8c60bc8ff7df703873deeee580c2"
 
 inherit autotools github-releases ptest